Known vulnerabilities in SUSE Linux Enterprise Server 15 SP4 LTSS - page 56

Vendor: SUSE
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_server_15_sp4_ltss:*:*:*:*:*:*:*:*
Total vulnerabilities: 1271
Public exploits: 40
Known exploited (KEV): 9
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise Server 15 SP4 LTSS SUSE Linux Enterprise Server 15 SP4 LTSS is affected by 1271 known vulnerabilities: 6 critical, 109 high, 231 medium, 925 low Critical High Medium Low

Vulnerabilities (1271)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU87208 - Out-of-bounds read
CVE-2023-48161
CWE-125 Medium
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2024060719
and 28 more
#VU87207 - Heap-based Buffer Overflow
CVE-2022-28506
CWE-122 High
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2022062452
and 9 more
#VU87206 - Missing release of memory after effective lifetime
CVE-2021-40633
CWE-401 Medium
No
No
- 07.03.2024 SB2024030740
SB2024030741
SB2024051326
and 11 more
#VU87201 - Improper input validation
CVE-2024-24784
CWE-20 Medium
No
No
- 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 48 more
#VU87200 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-24785
CWE-79 Low
No
No
- 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 61 more
#VU87196 - Error Handling
CVE-2024-24783
CWE-388 Medium
No
No
- 07.03.2024 SB2024030734
SB2024030750
SB2024030752
and 81 more
#VU87185 - UNIX Symbolic Link (Symlink) Following
CVE-2023-6597
CWE-61 Low
No
No
- 07.03.2024 SB2024030718
SB2024030726
SB2024030727
and 88 more
#VU86983 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2024-1597
CWE-89 High
No
No
- 04.03.2024 SB2024030405
SB2024030406
SB2024030427
and 47 more
#VU86927 - Integer overflow
CVE-2022-42265
CWE-190 Low
No
No
- 29.02.2024 SB2024022934
SB2024022938
SB2024030557
and 2 more
#VU86926 - NULL Pointer Dereference
CVE-2024-0075
CWE-476 Low
No
No
- 29.02.2024 SB2024022934
SB2024022938
SB2024030557
and 2 more
#VU86924 - Access of Memory Location After End of Buffer
CVE-2024-0074
CWE-788 Low
No
No
- 29.02.2024 SB2024022934
SB2024022938
SB2024030557
and 2 more
#VU86733 - Improper input validation
CVE-2024-22025
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 34 more
#VU86724 - Covert Timing Channel
CVE-2023-46809
CWE-385 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 35 more
#VU86721 - Improper input validation
CVE-2024-22019
CWE-20 Medium
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 48 more
#VU86718 - Improper Handling of Exceptional Conditions
CVE-2024-21892
CWE-755 Low
No
No
- 22.02.2024 SB2024022225
SB2024022226
SB2024022832
and 30 more
#VU86709 - Exposure of sensitive information to an unauthorized actor
CVE-2024-24758
CWE-200 Low
No
No
- 22.02.2024 SB2024022211
SB2024022225
SB2024022832
and 13 more
#VU86707 - Server-Side Request Forgery (SSRF)
CVE-2024-24806
CWE-918 Medium
No
No
- 22.02.2024 SB2024022210
SB2024022214
SB2024022225
and 54 more
#VU86531 - Resource exhaustion
CVE-2024-24814
CWE-400 Medium
No
No
- 15.02.2024 SB2024021511
SB2024022245
SB2024030531
and 9 more
#VU85764 - Improper Authentication
CVE-2023-42465
CWE-287 Low
No
No
- 24.01.2024 SB2024012432
SB2024012434
SB2024012435
and 32 more
#VU60733 - Improper input validation
CVE-2022-25236
CWE-20 Medium
No
No
- 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 109 more


Showing elements 1101 - 1120 out of 1271